Summary
Overview
Work History
Education
Skills
Certification
Area Of Emphasis
Timeline
Generic

TARIG SANHORI

Washington,DC

Summary

Diligent senior level Splunk Engineer with vast experience supporting teams in a multitude of roles and capacities. Possessing soft skills paired with extensive technical expertise results in the highest standards of service delivery. Recognized for problem solving abilities and flexibility while working with a wide range of clients and issues. Adept at leading cross-functional teams to achieve operational goals on a sprint-oriented basis. Looking to contribute to a challenging environment as a technical-focused Splunk SME.

Overview

13
13
years of professional experience
1
1
Certification

Work History

Splunk Admin

Florida Blue Guidewell, Blue Cross Blue Shield
03.2024 - Current
  • Aided non-technical Splunk users by setting up macros/saved searches, developing data models and providing ad-hoc support
  • Worked with inputs.conf, outputs.conf, server.conf, props.conf, transforms.conf, serverclass.conf and other configurations on a daily basis
  • Configured and managed Syslog-ng servers
  • Responded to an abundance of technical issues and queries
  • Ingested data from various sources in a plethora of methods – Lookup tables, Universal Forwarder, HEC, DB Connect, Syslog, etc
  • Dashboard and alert creation for a multitude of clients
  • Managed weekend evening patch validations of all splunk and Cribl Linux servers
  • Ensured that all the onboarded data into the system follows the consistent naming convention by normalizing it with CIM at search time
  • Written hundreds of multi-layered SPL queries utilizing subsearches, eval expressions, lookups, regex, custom field extractions, REST and others
  • Used complex Regex Expressions for the purpose of extracting data from raw logs to create field value pairs as well as filtering data, hashing, sending to null queue, etc
  • Responsible for the management of the entire Splunk deployment - both from OS and Splunk side - which includes tasks such as: daily health checks of the system (through the GUI, CLI and the REST API calls), management and clean-up of the knowledge objects (optimization, reassigning ownership of orphaned ones, deletion of unused ones etc.), CPU/RAM/storage management, rebooting and patching red-hat servers and others day-to-day maintenance tasks
  • Performed weekly app reviews of my peers work to ensure consistency in knowledge objects and source code

Splunk Engineer

Bank of America
Charlotte, NC
10.2022 - 03.2024
  • Company Overview: Charlotte NC
  • Responsible for creating scripted inputs for CarMax Shelby team ingestions, alerting, and dashboard efforts
  • Responsible for the management of the entire Splunk deployment - both from OS and Splunk side - which includes tasks such as: daily health checks of the system (through the GUI, CLI and the REST API calls), management and clean-up of the knowledge objects (optimization, reassigning ownership of orphaned ones, deletion of unused ones etc.), CPU/RAM/storage management, rebooting and patching red-hat servers and others day-to-day maintenance tasks
  • Ensured that all of the onboarded data into the system follows the consistent naming convention by normalizing it with CIM at search time
  • Written hundreds of multi-layered SPL queries utilizing subsearches, eval expressions, lookups, regex, custom field extractions, REST and others
  • Migrated management components (DS, CM, DP, LM, MC) from one set of servers to another while guaranteeing almost non-existent interruption to Splunk users
  • Integrated dozens of tools with Splunk, including but not limited to: VMware, Citrix, Ironstream, Kafka, Sysmon, AWS, Tenable, Slack
  • Charlotte NC

Splunk Engineer

Ally Financial
Charlotte, NC
10.2019 - 10.2022
  • Company Overview: Charlotte NC
  • Developed a series of highly interactive and sophisticated dashboards for a wide range of teams and purposes, e.g
  • Sterling File Gateway dashboard which included information about FTPS successful session ends, FTPS successful authentication, SFTP adapter session limit exceeded and other relevant information; Backup Images dashboard for Unix team to cover relevant metrics surrounding VM backup images; Agent Overview dashboard for the overall visibility of all the Unix/windows agents throughout the entire infrastructure - their states, service owners, network affiliation, health status etc
  • Responsible for the management of the entire Splunk deployment - both from OS and Splunk side - which includes tasks such as: daily health checks of the system (through the GUI, CLI and the REST API calls), management and clean-up of the knowledge objects (optimization, reassigning ownership of orphaned ones, deletion of unused ones etc.), CPU/RAM/storage management, rebooting and patching red-hat servers and others day-to-day maintenance tasks
  • Performed weekly scans for vulnerabilities and weaknesses on Splunk servers and remediated any possible security threats (e.g
  • Apache log4j CVE-2021-45105/CVE-2021-44832); ensured that Splunk deployment’s credentials/security keys (SSL certs, admin passwords, Splunk
  • Secret and pass4symmkey) are properly stored and managed
  • Designed, refined and implemented a build-out plan of a new infrastructure in a span of four months: the project’s goal was to set up of more than 80 Splunk components over a distributed, multi-site clustered environment to accommodate for future integration of security, DevOps, and SysOps tool throughout the enterprise’s domains and teams
  • Optimized the environment’s health and efficiency by setting up cascading knowledge bundle replication, multi-deployment server strategy, indexer discovery, index parallelization, higher tsidxWritingLevel and other optimization methods
  • Developed a set of throttled, cron-scheduled alerts for Middleware Engineering team and Puppet Team to ensure that they have an appropriate operational visibility into any outstanding events within their environment
  • Migrated management components (DS, CM, DP, LM, MC) from one set of servers to another while guaranteeing almost non-existent interruption to Splunk users
  • Integrated dozens of tools with Splunk, including but not limited to VMware, Citrix, Ironstream, Kafka, Sysmon, AWS, Tenable, Slack, ITSI, SAS
  • Ensured that all the onboarded data into the system follows the consistent naming convention by normalizing it with CIM at search time
  • Written hundreds of multi-layered SPL queries utilizing subsearches, eval expressions, lookups, regex, custom field extractions, REST and others
  • Charlotte NC

Splunk Engineer

United Health Group
Minnetonka, MN
05.2017 - 10.2019
  • Company Overview: Minnetonka, MN
  • Responsible for the management of data onboarding within the IT Process Automation domain: set up and hosted bi-weekly “catch-up” calls for Splunk SMEs, permitted new inputs based on capabilities of the infrastructure, disabled unused ones, established standards for retention policies and naming conventions of apps and indexes, increased licenses and scaled out the deployment to accommodate for growth
  • Onboarded data through Universal/Heavy forwarders, DBconnect, Syslog, HEC, scripted inputs, and API calls
  • Set up disaster recovery tests on multi-site clustered environment simulating an failover of entire sites
  • Built, configured and managed wide-range of Splunk components such as UFs, HFs License Masters, Deployment Servers, Cluster Masters, Deployers, Monitoring Consoles, Indexers, Search Heads
  • Controlled LDAP role-based access through authorize.conf and authentication.conf
  • Utilized sophisticated dashboard creation practices - base searches, advanced XML and CSS customizations, connecting panels to lookups and loadjobs, REST calls etc
  • - delivering well refined views and visualizations
  • Masked sensitive PII/PHI data
  • Performed 200+ of field extractions at search-time
  • Aided non-technical Splunk users by setting up macros/saved searches, developing data models and providing ad-hoc support
  • Worked with inputs.conf, outputs.conf, server.conf, props.conf, transforms.conf, serverclass.conf and other configurations on a daily basis
  • Configured and managed Syslog-ng servers
  • Responded to an abundance of technical issues and queries
  • Minnetonka, MN

Scrum Master

Verizon
Silver Spring, MD
04.2015 - 05.2017
  • Company Overview: Silver Spring MD
  • Key component in standing up Interoperability team in Charlotte, NC
  • Vital Develop alerts and timed reports Develop and manage Splunk applications
  • Provide leadership and key stakeholders with the information and venues to make effective, timely decisions
  • Provide backup support for other solutions network security solutions
  • Ensuring support tickets are fully updated with the most current data
  • Provide proper escalations and handoffs to management and support staff
  • Establish and ensure adoption of best practices and development standards
  • Communicate with peers and supervisors routinely, document work, meetings, and decisions
  • Work with multiple data sources
  • In removal of impediments encountered by the Scrum Team
  • Silver Spring MD

Scrum Master

United Health Group
Baltimore, MD
04.2013 - 04.2015
  • Company Overview: Baltimore MD
  • Facilitator of Scrum Events
  • Vital in removal of impediments encountered by the Scrum Team
  • Participant in bi-weekly Scrum guild meeting
  • Ensured artifact transparency between Scrum Team, Stakeholders, and others involved in product delivery
  • Coached Scrum Team on the rules, roles, events and artifacts within the Scrum Framework
  • Utilized key Scrum metrics (Burndown, Velocity) to help deliver committed work
  • Developed automation test scripts for functional and regression testing of web applications using UFT
  • Maintained and analyzed large volumes of regression testing results
  • Performed accessibility testing ensuring screen reader, tabbing order, and focus order of web applications
  • Worked with developers to remediate bugs found in testing results
  • Consistently worked alongside Product Owner to ensure proper backlog grooming and story prioritization
  • Coached team members on agile/scrum principles
  • Ensured cross-dependencies with other teams are included in the backlog grooming process
  • Expertly promoted a sense of progressive independence within team
  • Managed scrum boards (Physical and Virtual)
  • Trained new team members and transitioned team to agile within scrum framework
  • Updated agile tracking systems to improve transparency of product backlog and sprint backlog
  • Improved team morale by enhancing communication between development team members, product owner, and stakeholders
  • Researched and proposed processes and tools to drive innovation and increase productivity
  • Trained scrum master’s for two other scrum teams
  • Servant leader focused on the needs of up to three scrum teams
  • Acted as team representative during scrum of scrums to share high level updates on team progress and impediments to other teams
  • Helped scrum team solve problems internally without providing direct solutions
  • Scrum master for 10 major projects, all delivered on average 10% below budget
  • Showed ability to challenge status quo and enable new ways of thinking and working
  • Worked with scrum team members to determine the appropriate minimum viable product for delivery
  • Baltimore MD

QA Automation Engineer

SunTrust
Richmond, VA
03.2012 - 03.2013
  • Company Overview: Richmond VA
  • Used HP Quality Center to log defects and track resolution till the closing of defect after retesting
  • Created Keyword Driven, Data-Driven, and Hybrid automation frameworks using VbScript and HP UFT
  • Defined and implemented test metrics to determine coverage and effectiveness
  • QTP/UFT to automate functions for the web application under test
  • Utilized HP Quality Center for Test Planning, Test Case writing, Test Execution and Requirement Mapping with Test Cases
  • Performed accessibility testing on web application with NVDA as well as mobile applications using Android and iPhone built-in screen reader tools
  • Richmond VA

Education

Bachelor of Science - Mechanical Engineering

Omdurman University
Sudan

Bachelor of Business Administration -

University of South Asia
UK

Skills

  • Redhat Linux
  • Splunk Administration
  • XML/Regex
  • Splunk TA
  • Splunk Framework
  • Cribl Log Stream
  • Data Analysis/Research
  • Software Automation
  • Safeguard PII Information
  • Log Onboarding
  • Microsoft SQL Server Database
  • Jira
  • VBScript Programming Language
  • Java
  • Data Verification and Validation
  • Selenium
  • LeSS Framework
  • HP UFT/QTP
  • SAFe Framework
  • Software Development Life Cycle (SDLC)
  • Servant Leadership
  • License management
  • Cluster management
  • Splunk administration
  • Index management
  • Threat intelligence
  • Advanced searching
  • App deployment
  • Report generation
  • Data onboarding
  • IT operations
  • Role-based Access control
  • Dashboard creation
  • Regular expressions
  • Splunk development
  • Network monitoring
  • Knowledge objects
  • Capacity planning
  • Incident response
  • API integration
  • SIEM integration

Certification

  • Certified Splunk Core User
  • Certified Splunk Power User
  • Certified Splunk Admin
  • Certified Splunk Certified Architect
  • Redhat Linux
  • CompTIA Security +
  • Professional Scrum Master (PSM) 1

Area Of Emphasis

  • Redhat Linux
  • Splunk Administration
  • XML/Regex
  • Splunk TA
  • Splunk Framework
  • Cribl Log Stream
  • Data Analysis/Research
  • Software Automation
  • Safeguard PII Information
  • Log Onboarding
  • Microsoft SQL Server Database
  • Jira
  • VBScript Programming Language
  • Java
  • Data Verification and Validation
  • Selenium
  • LeSS Framework
  • HP UFT/QTP
  • SAFe Framework
  • Software Development Life Cycle (SDLC)
  • Servant Leadership

Timeline

Splunk Admin

Florida Blue Guidewell, Blue Cross Blue Shield
03.2024 - Current

Splunk Engineer

Bank of America
10.2022 - 03.2024

Splunk Engineer

Ally Financial
10.2019 - 10.2022

Splunk Engineer

United Health Group
05.2017 - 10.2019

Scrum Master

Verizon
04.2015 - 05.2017

Scrum Master

United Health Group
04.2013 - 04.2015

QA Automation Engineer

SunTrust
03.2012 - 03.2013

Bachelor of Science - Mechanical Engineering

Omdurman University

Bachelor of Business Administration -

University of South Asia
TARIG SANHORI